Cisco AnyConnect Secure Mobility Client 3.1.08009 Privilege Elevation
Posted by deepcore on October 6, 2015 – 8:57 am
Cisco AnyConnect Secure Mobility Client version 3.1.08009 suffers from a privilege escalation vulnerability. The fix for CVE-2015-4211 is insufficient which allows a local application to elevate to local system through the CMainThread::launchDownloader command.
Post a reply
You must be logged in to post a comment.